Added Golang information

This commit is contained in:
Cher Boon 2020-12-23 01:28:32 +08:00
parent 20da830ac1
commit a6727e8305

@ -24,17 +24,20 @@ Attacker -- http://example.com?search=Beth&search=' OR 1=1;## --> WAF (reads fir
### Table of refence for which technology reads which parameter
When ?par1=a&par1=b
| Technology | Parsing Result|outcome (par1=)|
| ------------------|---------------|:-------------:|
| ASP.NET/IIS |All occurrences |a,b |
| ASP/IIS |All occurrences |a,b |
| PHP/Apache |Last occurrence |b |
| PHP/Zues |Last occurrence |b |
| JSP,Servlet/Tomcat|First occurrence|a |
| Perl CGI/Apache |First occurrence|a |
| Python Flask |First occurrence|a |
| Python Django |Last occurrence |b |
| Nodejs |All occurrences |a,b |
| Technology | Parsing Result |outcome (par1=)|
| ------------------ |--------------- |:-------------:|
| ASP.NET/IIS |All occurrences |a,b |
| ASP/IIS |All occurrences |a,b |
| PHP/Apache |Last occurrence |b |
| PHP/Zues |Last occurrence |b |
| JSP,Servlet/Tomcat |First occurrence |a |
| Perl CGI/Apache |First occurrence |a |
| Python Flask |First occurrence |a |
| Python Django |Last occurrence |b |
| Nodejs |All occurrences |a,b |
| Golang-`r.URL.Query().Get("param")` |First occurrence |a |
| Golang-`r.URL.Query()["param"]` |All occurrences |a,b |
## References
- [HTTP Parameter Pollution - Imperva](https://www.imperva.com/learn/application-security/http-parameter-pollution/)